Your end-goal (purpose) involves not having to re-ACL the resources when the
data is moved, that task will involve migrating the groups with SID, (adding
to the sIDhistory attribute), you can use ADMT. But in order to migrate SID,
you need trust. Not sure what your other options are.

On Fri, Oct 23, 2009 at 11:51 AM, Jeff Ras <[email protected]> wrote:

> I'm sure this has been covered before, but I can't locate in the archives.
>
> New acquisition to our company has old domain xyz ... need to migrate xyz
> security groups to the new (existing) domain without establishing a domain
> trust.
>
> Purpose: When I move the data to the new domain, I don't want to manually
> set several thousand levels of permissions.
>
> Interested in software solutions too.. money not a huge issue as this will
> be needed many times.
>
> Thanks !
>
> Jeff-
>
> ~ NEW: CounterSpy Enterprise: Centralized Antispyware - #1 in eWEEK Test! ~
>    ~  <http://www.sunbelt-software.com/product.cfm?id=400>  ~
>

~ NEW: CounterSpy Enterprise: Centralized Antispyware - #1 in eWEEK Test! ~
    ~  <http://www.sunbelt-software.com/product.cfm?id=400>  ~

Reply via email to